Lucene search

K
cvelistMitreCVELIST:CVE-2017-11400
HistoryNov 20, 2017 - 3:00 p.m.

CVE-2017-11400

2017-11-2015:00:00
mitre
www.cve.org
4

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

32.0%

An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned, attacker-controlled, data. This occurs because the appliance_config file is signed but the .tar.sec file is unsigned.

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

32.0%

Related for CVELIST:CVE-2017-11400